Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-8038
HistoryNov 27, 2017 - 10:29 a.m.

Design/Logic Flaw

2017-11-2710:29:00
PRIOn knowledge base
www.prio-n.com
4

8.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

37.0%

In Cloud Foundry Foundation Credhub-release version 1.1.0, access control lists (ACLs) enforce whether an authenticated user can perform an operation on a credential. For installations using ACLs, the ACL was bypassed for the CredHub interpolate endpoint, allowing authenticated applications to view any credential within the CredHub installation.

CPENameOperatorVersion
credhub-releaseeq1.1.0

8.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

37.0%

Related for PRION:CVE-2017-8038